Summary Operating System Windows 10 Home 64-bit CPU Intel Core i5 7200U @ 2.50GHz 39 °C Kaby Lake-U/Y 14nm Technology RAM 8.00GB Dual-Channel Unknown @ 1064MHz (15-15-15-35) Motherboard LENOVO Lenovo YOGA 720-13IKB (U3E1) Graphics Generic PnP Monitor (1920x1080@60Hz) Intel HD Graphics 620 (Lenovo) Storage 238GB NVMe INTEL SSDPEKKW25 (RAID (SSD)) Optical Drives No optical disk drives detected Audio Realtek High Definition Audio Operating System Windows 10 Home 64-bit Computer type: Tablet Installation Date: 9/28/2019 7:22:04 PM Windows Security Center User Account Control (UAC) Enabled Notify level 2 - Default Windows Update AutoUpdate Not configured Windows Defender Windows Defender Enabled Firewall Firewall Enabled Display Name McAfee Firewall Antivirus Windows Defender Antivirus Enabled Virus Signature Database Up to date McAfee VirusScan Antivirus Disabled Virus Signature Database Up to date .NET Frameworks installed v4.8 Full v4.8 Client v3.5 SP1 v3.0 SP2 v2.0 SP2 Internet Explorer Version 11.476.18362.0 PowerShell Version 5.1.18362.1 Environment Variables USERPROFILE C:\Users\nicz8 SystemRoot C:\WINDOWS User Variables OneDrive C:\Users\nicz8\OneDrive OneDriveConsumer C:\Users\nicz8\OneDrive Path C:\Users\nicz8\AppData\Local\Microsoft\WindowsApps TEMP C:\Users\nicz8\AppData\Local\Temp TMP C:\Users\nicz8\AppData\Local\Temp Machine Variables ComSpec C:\WINDOWS\system32\cmd.exe configsetroot C:\WINDOWS\ConfigSetRoot DriverData C:\Windows\System32\Drivers\DriverData NUMBER_OF_PROCESSORS 4 OS Windows_NT Path C:\WINDOWS\system32 C:\WINDOWS C:\WINDOWS\System32\Wbem C:\WINDOWS\System32\WindowsPowerShell\v1.0\ C:\WINDOWS\System32\OpenSSH\ PATHEXT .COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC PROCESSOR_ARCHITECTURE AMD64 PROCESSOR_IDENTIFIER Intel64 Family 6 Model 142 Stepping 9, GenuineIntel PROCESSOR_LEVEL 6 PROCESSOR_REVISION 8e09 PSModulePath %ProgramFiles%\WindowsPowerShell\Modules C:\WINDOWS\system32\WindowsPowerShell\v1.0\Modules TEMP C:\WINDOWS\TEMP TMP C:\WINDOWS\TEMP USERNAME SYSTEM windir C:\WINDOWS Battery AC Line Online Battery Charge % 100 % Battery State High Remaining Battery Time Unknown Power Profile Active power scheme Balanced Hibernation Enabled Turn Off Monitor after: (On AC Power) 10 min Turn Off Monitor after: (On Battery Power) 5 min Turn Off Hard Disk after: (On AC Power) 20 min Turn Off Hard Disk after: (On Battery Power) 10 min Suspend after: (On AC Power) 30 min Suspend after: (On Battery Power) 15 min Screen saver Disabled Uptime Current Session Current Time 11/23/2019 3:35:56 PM Current Uptime 158,580 sec (1 d, 20 h, 03 m, 00 s) Last Boot Time 11/21/2019 7:32:56 PM Services Running Adobe Acrobat Update Service Running Application Information Running AppX Deployment Service (AppXSVC) Running AVCTP service Running Background Intelligent Transfer Service Running Background Tasks Infrastructure Service Running Base Filtering Engine Running Bluetooth Audio Gateway Service Running Bluetooth Support Service Running Bluetooth User Support Service_5fb51 Running Capability Access Manager Service Running Client License Service (ClipSVC) Running Clipboard User Service_5fb51 Running CNG Key Isolation Running COM+ Event System Running Computer Browser Running Connected Devices Platform Service Running Connected Devices Platform User Service_5fb51 Running Connected User Experiences and Telemetry Running Contact Data_5fb51 Running CoreMessaging Running Credential Manager Running Cryptographic Services Running Data Sharing Service Running Data Usage Running DCOM Server Process Launcher Running Delivery Optimization Running Device Association Service Running DHCP Client Running Diagnostic Policy Service Running Diagnostic Service Host Running Diagnostic System Host Running Display Enhancement Service Running Display Policy Service Running Distributed Link Tracking Client Running DNS Client Running Dolby DAX API Service Running ESIF Upper Framework Service Running Geolocation Service Running Intel Bluetooth Service Running Intel Content Protection HDCP Service Running Intel Content Protection HECI Service Running Intel HD Graphics Control Panel Service Running Intuit Update Service v4 Running IP Helper Running Local Session Manager Running McAfee AP Service Running McAfee CSP Service Running McAfee Module Core Service Running McAfee PEF Service Running McAfee Service Controller Running McAfee Validation Trust Protection Service Running McAfee WebAdvisor Running Microsoft Account Sign-in Assistant Running Microsoft Office Click-to-Run Service Running Microsoft Passport Running Microsoft Passport Container Running Microsoft Store Install Service Running Network Connection Broker Running Network Connections Running Network List Service Running Network Location Awareness Running Network Store Interface Service Running Plug and Play Running Power Running Print Spooler Running Program Compatibility Assistant Service Running Remote Access Connection Manager Running Remote Procedure Call (RPC) Running RPC Endpoint Mapper Running Secure Socket Tunneling Protocol Service Running Security Accounts Manager Running Security Center Running Sensor Monitoring Service Running Sensor Service Running Server Running Shell Hardware Detection Running SSDP Discovery Running State Repository Service Running Storage Service Running Sync Host_5fb51 Running SysMain Running System Event Notification Service Running System Events Broker Running System Guard Runtime Monitor Broker Running System Interface Foundation Service Running Task Scheduler Running TCP/IP NetBIOS Helper Running Themes Running Time Broker Running Touch Keyboard and Handwriting Panel Service Running Update Orchestrator Service Running User Data Access_5fb51 Running User Data Storage_5fb51 Running User Manager Running User Profile Service Running Wacom ISD Service Running Web Account Manager Running Windows Audio Running Windows Audio Endpoint Builder Running Windows Biometric Service Running Windows Connection Manager Running Windows Defender Antivirus Network Inspection Service Running Windows Defender Antivirus Service Running Windows Defender Firewall Running Windows Event Log Running Windows Font Cache Service Running Windows Image Acquisition (WIA) Running Windows License Manager Service Running Windows Management Instrumentation Running Windows Presentation Foundation Font Cache 3.0.0.0 Running Windows Push Notifications System Service Running Windows Push Notifications User Service_5fb51 Running Windows Search Running Windows Security Service Running Windows Update Running WinHTTP Web Proxy Auto-Discovery Service Running WLAN AutoConfig Running Workstation Running Xbox Live Auth Manager Running ymc Running YogaPLService Stopped ActiveX Installer (AxInstSV) Stopped Agent Activation Runtime_5fb51 Stopped AllJoyn Router Service Stopped App Readiness Stopped Application Identity Stopped Application Layer Gateway Service Stopped Auto Time Zone Updater Stopped BitLocker Drive Encryption Service Stopped Block Level Backup Engine Service Stopped CaptureService_5fb51 Stopped Cellular Time Stopped Certificate Propagation Stopped ClientAnalyticsService Stopped COM+ System Application Stopped ConsentUX_5fb51 Stopped CredentialEnrollmentManagerUserSvc_5fb51 Stopped Device Install Service Stopped Device Management Enrollment Service Stopped Device Management Wireless Application Protocol (WAP) Push message Routing Service Stopped Device Setup Manager Stopped DeviceAssociationBroker_5fb51 Stopped DevicePicker_5fb51 Stopped DevicesFlow_5fb51 Stopped DevQuery Background Discovery Broker Stopped Diagnostic Execution Service Stopped Distributed Transaction Coordinator Stopped Downloaded Maps Manager Stopped Embedded Mode Stopped Encrypting File System (EFS) Stopped Enterprise App Management Service Stopped Extensible Authentication Protocol Stopped Fax Stopped File History Service Stopped Function Discovery Provider Host Stopped Function Discovery Resource Publication Stopped GameDVR and Broadcast User Service_5fb51 Stopped Google Chrome Elevation Service Stopped Google Update Service (gupdate) Stopped Google Update Service (gupdatem) Stopped GraphicsPerfSvc Stopped Group Policy Client Stopped Human Interface Device Service Stopped HV Host Service Stopped Hyper-V Data Exchange Service Stopped Hyper-V Guest Service Interface Stopped Hyper-V Guest Shutdown Service Stopped Hyper-V Heartbeat Service Stopped Hyper-V PowerShell Direct Service Stopped Hyper-V Remote Desktop Virtualization Service Stopped Hyper-V Time Synchronization Service Stopped Hyper-V Volume Shadow Copy Requestor Stopped IKE and AuthIP IPsec Keying Modules Stopped Internet Connection Sharing (ICS) Stopped IP Translation Configuration Service Stopped IPsec Policy Agent Stopped KtmRm for Distributed Transaction Coordinator Stopped Language Experience Service Stopped Link-Layer Topology Discovery Mapper Stopped Local Profile Assistant Service Stopped McAfee Activation Service Stopped McAfee Firewall Core Service Stopped McSecDashboardService Stopped MessagingService_5fb51 Stopped Microsoft Diagnostics Hub Standard Collector Service Stopped Microsoft iSCSI Initiator Service Stopped Microsoft Software Shadow Copy Provider Stopped Microsoft Storage Spaces SMP Stopped Microsoft Windows SMS Router Service. Stopped Natural Authentication Stopped Net.Tcp Port Sharing Service Stopped Netlogon Stopped Network Connected Devices Auto-Setup Stopped Network Connectivity Assistant Stopped Network Setup Service Stopped Office Source Engine Stopped OpenSSH Authentication Agent Stopped Optimize drives Stopped Parental Controls Stopped Payments and NFC/SE Manager Stopped Peer Name Resolution Protocol Stopped Peer Networking Grouping Stopped Peer Networking Identity Manager Stopped Performance Counter DLL Host Stopped Performance Logs & Alerts Stopped Phone Service Stopped PNRP Machine Name Publication Service Stopped Portable Device Enumerator Service Stopped Printer Extensions and Notifications Stopped PrintWorkflow_5fb51 Stopped Problem Reports and Solutions Control Panel Support Stopped Quality Windows Audio Video Experience Stopped Radio Management Service Stopped Recommended Troubleshooting Service Stopped Remote Access Auto Connection Manager Stopped Remote Desktop Configuration Stopped Remote Desktop Services Stopped Remote Desktop Services UserMode Port Redirector Stopped Remote Procedure Call (RPC) Locator Stopped Remote Registry Stopped Retail Demo Service Stopped Routing and Remote Access Stopped Secondary Logon Stopped Sensor Data Service Stopped Shared PC Account Manager Stopped Smart Card Stopped Smart Card Device Enumeration Service Stopped Smart Card Removal Policy Stopped SNMP Trap Stopped Software Protection Stopped Spatial Data Service Stopped Spot Verifier Stopped Still Image Acquisition Events Stopped Storage Tiers Management Stopped Telephony Stopped UPnP Device Host Stopped Virtual Disk Stopped Volume Shadow Copy Stopped Volumetric Audio Compositor Service Stopped WalletService Stopped WarpJITSvc Stopped WebClient Stopped Wi-Fi Direct Services Connection Manager Service Stopped Windows Backup Stopped Windows Camera Frame Server Stopped Windows Connect Now - Config Registrar Stopped Windows Encryption Provider Host Service Stopped Windows Error Reporting Service Stopped Windows Event Collector Stopped Windows Insider Service Stopped Windows Installer Stopped Windows Management Service Stopped Windows Media Player Network Sharing Service Stopped Windows Mobile Hotspot Service Stopped Windows Modules Installer Stopped Windows Perception Service Stopped Windows Perception Simulation Service Stopped Windows PushToInstall Service Stopped Windows Remote Management (WS-Management) Stopped Windows Time Stopped Windows Update Medic Service Stopped Wired AutoConfig Stopped WMI Performance Adapter Stopped Work Folders Stopped WWAN AutoConfig Stopped Xbox Accessory Management Service Stopped Xbox Live Game Save Stopped Xbox Live Networking Service TimeZone TimeZone GMT -6:00 Hours Language English (United States) Location United States Format English (United States) Currency $ Date Format M/d/yyyy Time Format h:mm:ss tt Scheduler 11/23/2019 4:22 PM; GoogleUpdateTaskMachineUA 11/23/2019 6:00 PM; Adobe Acrobat Update Task 11/23/2019 7:51 PM; OneDrive Standalone Update Task-S-1-5-21-2126566057-4181855661-943989508-1001 11/23/2019 9:22 PM; GoogleUpdateTaskMachineCore App Explorer McAfee Remediation (Prepare) McAfeeLogon Hotfixes Installed 11/23/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2647.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/22/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2586.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/22/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2574.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/21/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2517.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/19/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2357.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/17/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2289.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/16/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2198.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/14/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.2064.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/14/2019 Windows Malicious Software Removal Tool x64 - November 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 11/14/2019 2019-11 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4524570) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 11/13/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1981.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/11/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1849.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/10/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1794.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/9/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1763.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/9/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1699.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/8/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1557.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/4/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1333.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 11/1/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.1188.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/29/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.876.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/29/2019 Update for Windows Defender Antivirus antimalware platform - KB4052623 (Version 4.18.1910.4) This package will update Windows Defender Antivirus antimalware platform’s components on the user machine. 10/28/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.305.775.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/15/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.1716.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/14/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.1684.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/14/2019 2019-10 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4524100) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/14/2019 Windows Malicious Software Removal Tool x64 - October 2019 (KB890830) After the download, this tool runs one time to check your computer for infection by specific, prevalent malicious software (including Blaster, Sasser, and Mydoom) and helps remove any infection that is found. If an infection is found, the tool will display a status report the next time that you start your computer. A new version of the tool will be offered every month. If you want to manually run the tool on your computer, you can download a copy from the Microsoft Download Center, or you can run an online version from microsoft.com. This tool is not a replacement for an antivirus product. To help protect your computer, you should use an antivirus product. 10/14/2019 2019-10 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4517389) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/13/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.1611.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/12/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.1553.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/11/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.1494.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/7/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.1066.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/5/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.950.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/5/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.944.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/5/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.941.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/4/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.896.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/4/2019 2019-09 Security Update for Adobe Flash Player for Windows 10 Version 1903 for x64-based Systems (KB4516115) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 10/4/2019 2019-09 Cumulative Update for .NET Framework 3.5 and 4.8 for Windows 10 Version 1903 for x64 (KB4514359) A security issue has been identified in a Microsoft software product that could affect your system. You can help protect your system by installing this update from Microsoft. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article. After you install this update, you may have to restart your system. 10/4/2019 2019-09 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4524147) Install this update to resolve issues in Windows. For a complete listing of the issues that are included in this update, see the associated Microsoft Knowledge Base article for more information. After you install this item, you may have to restart your computer. 10/3/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.801.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/3/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.742.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/3/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.741.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/2/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.659.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/1/2019 Update for Windows Defender Antivirus antimalware platform - KB4052623 (Version 4.18.1909.6) This package will update Windows Defender Antivirus antimalware platform’s components on the user machine. 10/1/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.651.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 10/1/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.570.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 9/30/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.488.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 9/29/2019 Security Intelligence Update for Windows Defender Antivirus - KB2267602 (Version 1.303.479.0) Install this update to revise the files that are used to detect viruses, spyware, and other potentially unwanted software. Once you have installed this item, it cannot be removed. 9/29/2019 Realtek Semiconductor Corp. - MEDIA - 2/3/2017 12:00:00 AM - 6.0.1.8057 Realtek Semiconductor Corp. MEDIA driver update released in February 2017 9/29/2019 Feature update to Windows 10, version 1903 Install the latest update for Windows 10: Windows 10, version 1903. Not Installed System Folders Application Data C:\ProgramData Cookies C:\Users\nicz8\AppData\Local\Microsoft\Windows\INetCookies Desktop C:\Users\nicz8\Desktop Documents C:\Users\Public\Documents Fonts C:\WINDOWS\Fonts Global Favorites C:\Users\nicz8\Favorites Internet History C:\Users\nicz8\AppData\Local\Microsoft\Windows\History Local Application Data C:\Users\nicz8\AppData\Local Music C:\Users\Public\Music Path for burning CD C:\Users\nicz8\AppData\Local\Microsoft\Windows\Burn\Burn Physical Desktop C:\Users\nicz8\Desktop Pictures C:\Users\Public\Pictures Program Files C:\Program Files Public Desktop C:\Users\Public\Desktop Start Menu C:\ProgramData\Microsoft\Windows\Start Menu Start Menu Programs C:\ProgramData\Microsoft\Windows\Start Menu\Programs Startup C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup Templates C:\ProgramData\Microsoft\Windows\Templates Temporary Internet Files C:\Users\nicz8\AppData\Local\Microsoft\Windows\INetCache User Favorites C:\Users\nicz8\Favorites Videos C:\Users\Public\Videos Windows Directory C:\WINDOWS Windows/System C:\WINDOWS\system32 Process List ApplicationFrameHost.exe Process ID 14288 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\ApplicationFrameHost.exe Memory Usage 34 MB Peak Memory Usage 37 MB AppVShNotify.exe Process ID 10244 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe Memory Usage 1.52 MB Peak Memory Usage 7.92 MB AppVShNotify.exe Process ID 3668 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe Memory Usage 1.50 MB Peak Memory Usage 7.96 MB armsvc.exe Process ID 3916 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe Memory Usage 1.71 MB Peak Memory Usage 6.85 MB audiodg.exe Process ID 2656 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\audiodg.exe Memory Usage 22 MB Peak Memory Usage 31 MB backgroundTaskHost.exe Process ID 7672 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\backgroundTaskHost.exe Memory Usage 20 MB Peak Memory Usage 23 MB backgroundTaskHost.exe Process ID 17672 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\SysWOW64\backgroundTaskHost.exe Memory Usage 20 MB Peak Memory Usage 24 MB browser_broker.exe Process ID 8732 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\browser_broker.exe Memory Usage 3.40 MB Peak Memory Usage 8.36 MB browserhost.exe Process ID 18304 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\mcafee\WebAdvisor\browserhost.exe Memory Usage 14 MB Peak Memory Usage 21 MB chrome.exe Process ID 19388 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 43 MB Peak Memory Usage 54 MB chrome.exe Process ID 11044 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 50 MB Peak Memory Usage 52 MB chrome.exe Process ID 12768 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 71 MB Peak Memory Usage 95 MB chrome.exe Process ID 7520 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 63 MB Peak Memory Usage 66 MB chrome.exe Process ID 11124 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 26 MB Peak Memory Usage 40 MB chrome.exe Process ID 15296 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 37 MB Peak Memory Usage 38 MB chrome.exe Process ID 12108 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 54 MB Peak Memory Usage 65 MB chrome.exe Process ID 7412 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 73 MB Peak Memory Usage 191 MB chrome.exe Process ID 14608 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 38 MB Peak Memory Usage 39 MB chrome.exe Process ID 15692 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 99 MB Peak Memory Usage 129 MB chrome.exe Process ID 8112 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 49 MB Peak Memory Usage 54 MB chrome.exe Process ID 5068 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 40 MB Peak Memory Usage 41 MB chrome.exe Process ID 7760 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 46 MB Peak Memory Usage 56 MB chrome.exe Process ID 6284 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 174 MB Peak Memory Usage 192 MB chrome.exe Process ID 19848 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 65 MB Peak Memory Usage 69 MB chrome.exe Process ID 11728 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 42 MB Peak Memory Usage 46 MB chrome.exe Process ID 7364 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 52 MB Peak Memory Usage 55 MB chrome.exe Process ID 17652 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 121 MB Peak Memory Usage 151 MB chrome.exe Process ID 20128 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 234 MB Peak Memory Usage 278 MB chrome.exe Process ID 14656 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 99 MB Peak Memory Usage 116 MB chrome.exe Process ID 10540 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 198 MB Peak Memory Usage 221 MB chrome.exe Process ID 12404 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 43 MB Peak Memory Usage 120 MB chrome.exe Process ID 13568 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 48 MB Peak Memory Usage 52 MB chrome.exe Process ID 9688 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 186 MB Peak Memory Usage 211 MB chrome.exe Process ID 15444 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 9.34 MB Peak Memory Usage 15 MB chrome.exe Process ID 17588 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 362 MB Peak Memory Usage 525 MB chrome.exe Process ID 15340 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 21 MB Peak Memory Usage 35 MB chrome.exe Process ID 16084 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 33 MB Peak Memory Usage 39 MB chrome.exe Process ID 12860 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 107 MB Peak Memory Usage 210 MB chrome.exe Process ID 15868 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 67 MB Peak Memory Usage 142 MB chrome.exe Process ID 7144 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 106 MB Peak Memory Usage 494 MB chrome.exe Process ID 15844 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 22 MB Peak Memory Usage 37 MB chrome.exe Process ID 4296 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 24 MB Peak Memory Usage 43 MB chrome.exe Process ID 15280 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 119 MB Peak Memory Usage 351 MB chrome.exe Process ID 17336 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 63 MB Peak Memory Usage 63 MB chrome.exe Process ID 12752 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 63 MB Peak Memory Usage 92 MB chrome.exe Process ID 10484 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 39 MB Peak Memory Usage 50 MB chrome.exe Process ID 8340 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 197 MB Peak Memory Usage 259 MB chrome.exe Process ID 8972 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 103 MB Peak Memory Usage 350 MB chrome.exe Process ID 16008 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 44 MB Peak Memory Usage 53 MB chrome.exe Process ID 12612 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 37 MB Peak Memory Usage 84 MB chrome.exe Process ID 14952 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 107 MB Peak Memory Usage 152 MB chrome.exe Process ID 15612 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 136 MB Peak Memory Usage 266 MB chrome.exe Process ID 7148 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 55 MB Peak Memory Usage 131 MB chrome.exe Process ID 19368 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 58 MB Peak Memory Usage 164 MB chrome.exe Process ID 15312 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 69 MB Peak Memory Usage 229 MB chrome.exe Process ID 15672 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 38 MB Peak Memory Usage 44 MB chrome.exe Process ID 11376 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 22 MB Peak Memory Usage 40 MB chrome.exe Process ID 16912 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 76 MB Peak Memory Usage 379 MB chrome.exe Process ID 15728 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 32 MB Peak Memory Usage 42 MB chrome.exe Process ID 16140 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 36 MB Peak Memory Usage 43 MB chrome.exe Process ID 15860 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 28 MB Peak Memory Usage 38 MB chrome.exe Process ID 11616 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 57 MB Peak Memory Usage 62 MB chrome.exe Process ID 11296 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 63 MB Peak Memory Usage 86 MB chrome.exe Process ID 12100 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 444 MB Peak Memory Usage 807 MB chrome.exe Process ID 12000 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 2.49 MB Peak Memory Usage 8.42 MB chrome.exe Process ID 11916 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 2.13 MB Peak Memory Usage 6.13 MB chrome.exe Process ID 11904 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Google\Chrome\Application\chrome.exe Memory Usage 363 MB Peak Memory Usage 382 MB ChsIME.exe Process ID 9928 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\InputMethod\CHS\ChsIME.exe Memory Usage 1.90 MB Peak Memory Usage 8.16 MB cmd.exe Process ID 5676 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\cmd.exe Memory Usage 3.22 MB Peak Memory Usage 3.67 MB CompPkgSrv.exe Process ID 16500 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\CompPkgSrv.exe Memory Usage 4.16 MB Peak Memory Usage 8.50 MB conhost.exe Process ID 3528 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\conhost.exe Memory Usage 1.04 MB Peak Memory Usage 10 MB conhost.exe Process ID 5800 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\conhost.exe Memory Usage 12 MB Peak Memory Usage 13 MB conhost.exe Process ID 14292 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\conhost.exe Memory Usage 1.16 MB Peak Memory Usage 11 MB CredentialUIBroker.exe Process ID 18052 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\CredentialUIBroker.exe Memory Usage 24 MB Peak Memory Usage 59 MB csrss.exe Process ID 708 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 2.01 MB Peak Memory Usage 5.44 MB csrss.exe Process ID 800 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\csrss.exe Memory Usage 3.13 MB Peak Memory Usage 13 MB ctfmon.exe Process ID 9536 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\ctfmon.exe Memory Usage 9.17 MB Peak Memory Usage 15 MB DAX3API.exe Process ID 13844 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Dolby\Dolby DAX3\API\DAX3API.exe Memory Usage 21 MB Peak Memory Usage 44 MB DAX3TrayIcon.exe Process ID 10940 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Dolby\Dolby DAX3\APP\DAX3TrayIcon.exe Memory Usage 2.40 MB Peak Memory Usage 11 MB dllhost.exe Process ID 8988 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\dllhost.exe Memory Usage 5.96 MB Peak Memory Usage 11 MB dllhost.exe Process ID 12816 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\dllhost.exe Memory Usage 8.02 MB Peak Memory Usage 12 MB dllhost.exe Process ID 8428 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\dllhost.exe Memory Usage 4.13 MB Peak Memory Usage 11 MB dllhost.exe Process ID 17228 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\dllhost.exe Memory Usage 6.61 MB Peak Memory Usage 6.61 MB dwm.exe Process ID 1296 User DWM-1 Domain Window Manager Path C:\Windows\System32\dwm.exe Memory Usage 80 MB Peak Memory Usage 125 MB esif_assist_64.exe Process ID 6764 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\Temp\DPTF\esif_assist_64.exe Memory Usage 1.05 MB Peak Memory Usage 4.50 MB esif_uf.exe Process ID 3980 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\Intel\DPTF\esif_uf.exe Memory Usage 1.36 MB Peak Memory Usage 6.88 MB explorer.exe Process ID 8092 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\explorer.exe Memory Usage 115 MB Peak Memory Usage 134 MB fontdrvhost.exe Process ID 636 User UMFD-1 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 3.77 MB Peak Memory Usage 4.83 MB fontdrvhost.exe Process ID 644 User UMFD-0 Domain Font Driver Host Path C:\Windows\System32\fontdrvhost.exe Memory Usage 552 KB Peak Memory Usage 3.54 MB GoogleCrashHandler.exe Process ID 10092 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler.exe Memory Usage 644 KB Peak Memory Usage 7.08 MB GoogleCrashHandler64.exe Process ID 8976 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Google\Update\1.3.35.342\GoogleCrashHandler64.exe Memory Usage 176 KB Peak Memory Usage 6.79 MB HostAppServiceUpdater.exe Process ID 2444 User nicz8 Domain DESKTOP-T35MG81 Path C:\Users\nicz8\AppData\Local\Host App Service\Engine\HostAppServiceUpdater.exe Memory Usage 3.49 MB Peak Memory Usage 24 MB ibtsiva.exe Process ID 4016 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\ibtsiva.exe Memory Usage 2.12 MB Peak Memory Usage 4.59 MB igfxCUIService.exe Process ID 2552 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_09afa4e14ee4fad2\igfxCUIService.exe Memory Usage 2.35 MB Peak Memory Usage 8.58 MB igfxEM.exe Process ID 7972 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_09afa4e14ee4fad2\igfxEM.exe Memory Usage 5.67 MB Peak Memory Usage 13 MB IntelCpHDCPSvc.exe Process ID 3892 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_09afa4e14ee4fad2\IntelCpHDCPSvc.exe Memory Usage 1.73 MB Peak Memory Usage 6.88 MB IntelCpHeciSvc.exe Process ID 4372 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_09afa4e14ee4fad2\IntelCpHeciSvc.exe Memory Usage 2.56 MB Peak Memory Usage 7.94 MB IntuitUpdateService.exe Process ID 11472 User SYSTEM Domain NT AUTHORITY Path C:\Program Files (x86)\Common Files\Intuit\Update Service v4\IntuitUpdateService.exe Memory Usage 2.66 MB Peak Memory Usage 37 MB ISD_Tablet.exe Process ID 6696 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Tablet\ISD\ISD_Tablet.exe Memory Usage 7.93 MB Peak Memory Usage 24 MB ISD_TabletUser.exe Process ID 7420 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Tablet\ISD\ISD_TabletUser.exe Memory Usage 2.47 MB Peak Memory Usage 7.77 MB Lenovo.Modern.ImController.exe Process ID 4036 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe Memory Usage 49 MB Peak Memory Usage 62 MB Lenovo.Modern.ImController.PluginHost.CompanionApp.exe Process ID 19224 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe Memory Usage 55 MB Peak Memory Usage 56 MB Lenovo.Modern.ImController.PluginHost.Device.exe Process ID 19308 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe Memory Usage 45 MB Peak Memory Usage 50 MB Lenovo.Modern.ImController.PluginHost.Device.exe Process ID 12792 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe Memory Usage 41 MB Peak Memory Usage 45 MB Lenovo.Modern.ImController.PluginHost.Device.exe Process ID 10176 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe Memory Usage 59 MB Peak Memory Usage 60 MB Lenovo.Modern.ImController.PluginHost.SettingsApp.exe Process ID 4788 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe Memory Usage 47 MB Peak Memory Usage 48 MB Lenovo.Modern.ImController.PluginHost.SettingsApp.exe Process ID 14084 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe Memory Usage 21 MB Peak Memory Usage 45 MB LockApp.exe Process ID 1500 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe Memory Usage 19 MB Peak Memory Usage 52 MB lsass.exe Process ID 976 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\lsass.exe Memory Usage 13 MB Peak Memory Usage 19 MB mcapexe.exe Process ID 11424 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\VSCore_15_8\mcapexe.exe Memory Usage 2.26 MB Peak Memory Usage 11 MB McCSPServiceHost.exe Process ID 6440 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\csp\2.7.371.0\McCSPServiceHost.exe Memory Usage 15 MB Peak Memory Usage 23 MB mcshield.exe Process ID 11864 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\amcore\mcshield.exe Memory Usage 7.47 MB Peak Memory Usage 15 MB McUICnt.exe Process ID 16196 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Common Files\mcafee\platform\McUICnt.exe Memory Usage 33 MB Peak Memory Usage 44 MB Memory Compression Process ID 2380 User SYSTEM Domain NT AUTHORITY Memory Usage 117 MB Peak Memory Usage 518 MB MfeAVSvc.exe Process ID 11460 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\mcafee\MfeAV\MfeAVSvc.exe Memory Usage 6.89 MB Peak Memory Usage 31 MB mfefire.exe Process ID 6276 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe Memory Usage 4.64 MB Peak Memory Usage 11 MB mfemms.exe Process ID 4080 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe Memory Usage 4.11 MB Peak Memory Usage 8.96 MB mfevtps.exe Process ID 5320 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\mfevtps.exe Memory Usage 6.57 MB Peak Memory Usage 41 MB mfevtps.exe Process ID 11392 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\mfevtps.exe Memory Usage 1.19 MB Peak Memory Usage 7.30 MB Microsoft.Photos.exe Process ID 13000 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe Memory Usage 1.00 MB Peak Memory Usage 99 MB MicrosoftEdge.exe Process ID 20200 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe Memory Usage 27 MB Peak Memory Usage 69 MB MicrosoftEdgeCP.exe Process ID 16516 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\MicrosoftEdgeCP.exe Memory Usage 10 MB Peak Memory Usage 26 MB MicrosoftEdgeSH.exe Process ID 15564 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\MicrosoftEdgeSH.exe Memory Usage 4.77 MB Peak Memory Usage 13 MB MMSSHOST.exe Process ID 5256 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\MMSSHost\MMSSHOST.exe Memory Usage 26 MB Peak Memory Usage 59 MB ModuleCoreService.exe Process ID 14272 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Common Files\mcafee\modulecore\ModuleCoreService.exe Memory Usage 9.83 MB Peak Memory Usage 36 MB ModuleCoreService.exe Process ID 4092 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\modulecore\ModuleCoreService.exe Memory Usage 46 MB Peak Memory Usage 67 MB MsMpEng.exe Process ID 4232 User SYSTEM Domain NT AUTHORITY Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe Memory Usage 214 MB Peak Memory Usage 629 MB NisSrv.exe Process ID 4564 User LOCAL SERVICE Domain NT AUTHORITY Path C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe Memory Usage 5.18 MB Peak Memory Usage 15 MB OfficeClickToRun.exe Process ID 9392 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe Memory Usage 37 MB Peak Memory Usage 110 MB OneDrive.exe Process ID 17076 User nicz8 Domain DESKTOP-T35MG81 Path C:\Users\nicz8\AppData\Local\Microsoft\OneDrive\OneDrive.exe Memory Usage 37 MB Peak Memory Usage 74 MB OpenWith.exe Process ID 13160 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\OpenWith.exe Memory Usage 37 MB Peak Memory Usage 39 MB PEFService.exe Process ID 4116 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Common Files\mcafee\PEF\CORE\PEFService.exe Memory Usage 2.09 MB Peak Memory Usage 14 MB PLHotkeyService.exe Process ID 4172 User SYSTEM Domain NT AUTHORITY Path C:\ProgramData\Lenovo\PLHotkeyService\PLHotkeyService.exe Memory Usage 11 MB Peak Memory Usage 17 MB PresentationFontCache.exe Process ID 7308 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe Memory Usage 8.50 MB Peak Memory Usage 24 MB RAVBg64.exe Process ID 1544 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 6.60 MB Peak Memory Usage 16 MB RAVBg64.exe Process ID 10900 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe Memory Usage 6.25 MB Peak Memory Usage 16 MB RAVCpl64.exe Process ID 11232 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe Memory Usage 6.21 MB Peak Memory Usage 18 MB Registry Process ID 96 User SYSTEM Domain NT AUTHORITY Memory Usage 38 MB Peak Memory Usage 126 MB RuntimeBroker.exe Process ID 10340 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 18 MB Peak Memory Usage 22 MB RuntimeBroker.exe Process ID 10720 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 6.13 MB Peak Memory Usage 21 MB RuntimeBroker.exe Process ID 17576 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 4.77 MB Peak Memory Usage 21 MB RuntimeBroker.exe Process ID 904 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 13 MB Peak Memory Usage 32 MB RuntimeBroker.exe Process ID 15396 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 20 MB Peak Memory Usage 38 MB RuntimeBroker.exe Process ID 4420 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 3.42 MB Peak Memory Usage 17 MB RuntimeBroker.exe Process ID 8124 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 9.66 MB Peak Memory Usage 22 MB RuntimeBroker.exe Process ID 15704 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 17 MB Peak Memory Usage 124 MB RuntimeBroker.exe Process ID 7524 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 7.68 MB Peak Memory Usage 26 MB RuntimeBroker.exe Process ID 20448 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 26 MB Peak Memory Usage 32 MB RuntimeBroker.exe Process ID 10448 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 18 MB Peak Memory Usage 18 MB RuntimeBroker.exe Process ID 8844 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 18 MB Peak Memory Usage 30 MB RuntimeBroker.exe Process ID 3340 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\RuntimeBroker.exe Memory Usage 45 MB Peak Memory Usage 54 MB SearchFilterHost.exe Process ID 15120 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchFilterHost.exe Memory Usage 12 MB Peak Memory Usage 12 MB SearchIndexer.exe Process ID 11588 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchIndexer.exe Memory Usage 31 MB Peak Memory Usage 52 MB SearchProtocolHost.exe Process ID 5656 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SearchProtocolHost.exe Memory Usage 19 MB Peak Memory Usage 20 MB SearchUI.exe Process ID 9120 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe Memory Usage 176 MB Peak Memory Usage 236 MB SecurityHealthService.exe Process ID 11152 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SecurityHealthService.exe Memory Usage 8.10 MB Peak Memory Usage 17 MB SecurityHealthSystray.exe Process ID 11116 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\SecurityHealthSystray.exe Memory Usage 2.32 MB Peak Memory Usage 8.78 MB servicehost.exe Process ID 3540 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\mcafee\WebAdvisor\servicehost.exe Memory Usage 18 MB Peak Memory Usage 25 MB services.exe Process ID 908 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\services.exe Memory Usage 6.93 MB Peak Memory Usage 10 MB SettingSyncHost.exe Process ID 9900 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\SettingSyncHost.exe Memory Usage 6.66 MB Peak Memory Usage 44 MB SgrmBroker.exe Process ID 7508 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\SgrmBroker.exe Memory Usage 4.22 MB Peak Memory Usage 7.00 MB ShellExperienceHost.exe Process ID 9964 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe Memory Usage 17 MB Peak Memory Usage 56 MB sihost.exe Process ID 6860 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\sihost.exe Memory Usage 21 MB Peak Memory Usage 27 MB SkypeApp.exe Process ID 15548 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe Memory Usage 87 MB Peak Memory Usage 239 MB SkypeBackgroundHost.exe Process ID 20268 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe Memory Usage 6.18 MB Peak Memory Usage 7.72 MB SkypeBridge.exe Process ID 10472 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeBridge\SkypeBridge.exe Memory Usage 39 MB Peak Memory Usage 60 MB smartscreen.exe Process ID 17024 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\smartscreen.exe Memory Usage 22 MB Peak Memory Usage 32 MB smss.exe Process ID 536 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\smss.exe Memory Usage 256 KB Peak Memory Usage 1.25 MB Speccy64.exe Process ID 19904 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Speccy\Speccy64.exe Memory Usage 28 MB Peak Memory Usage 29 MB speedfan.exe Process ID 17096 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files (x86)\SpeedFan\speedfan.exe Memory Usage 23 MB Peak Memory Usage 33 MB spoolsv.exe Process ID 3520 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\spoolsv.exe Memory Usage 7.12 MB Peak Memory Usage 19 MB SSScheduler.exe Process ID 11732 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\McAfee Security Scan\3.11.717\SSScheduler.exe Memory Usage 1.67 MB Peak Memory Usage 20 MB StartMenuExperienceHost.exe Process ID 8636 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe Memory Usage 55 MB Peak Memory Usage 69 MB svchost.exe Process ID 7892 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\svchost.exe Memory Usage 6.41 MB Peak Memory Usage 18 MB svchost.exe Process ID 7992 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 19 MB svchost.exe Process ID 7956 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.35 MB Peak Memory Usage 7.20 MB svchost.exe Process ID 568 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 744 KB Peak Memory Usage 3.93 MB svchost.exe Process ID 7368 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 18 MB Peak Memory Usage 25 MB svchost.exe Process ID 13836 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 21 MB svchost.exe Process ID 9376 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 22 MB svchost.exe Process ID 3436 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 30 MB svchost.exe Process ID 7068 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\svchost.exe Memory Usage 21 MB Peak Memory Usage 32 MB svchost.exe Process ID 6356 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 25 MB svchost.exe Process ID 10224 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 40 MB svchost.exe Process ID 10816 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.50 MB Peak Memory Usage 11 MB svchost.exe Process ID 7032 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\svchost.exe Memory Usage 3.13 MB Peak Memory Usage 8.25 MB svchost.exe Process ID 10180 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.29 MB Peak Memory Usage 11 MB svchost.exe Process ID 14888 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 31 MB svchost.exe Process ID 15044 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.20 MB Peak Memory Usage 12 MB svchost.exe Process ID 7024 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\svchost.exe Memory Usage 19 MB Peak Memory Usage 27 MB svchost.exe Process ID 6040 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.71 MB Peak Memory Usage 18 MB svchost.exe Process ID 5884 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.08 MB Peak Memory Usage 9.27 MB svchost.exe Process ID 5300 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.52 MB Peak Memory Usage 9.70 MB svchost.exe Process ID 5112 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.10 MB Peak Memory Usage 9.35 MB svchost.exe Process ID 5048 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.01 MB Peak Memory Usage 12 MB svchost.exe Process ID 4556 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.47 MB Peak Memory Usage 14 MB svchost.exe Process ID 4284 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.87 MB Peak Memory Usage 8.05 MB svchost.exe Process ID 4220 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.35 MB Peak Memory Usage 6.07 MB svchost.exe Process ID 4212 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 24 MB svchost.exe Process ID 4204 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.67 MB Peak Memory Usage 5.55 MB svchost.exe Process ID 4196 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 572 KB Peak Memory Usage 6.59 MB svchost.exe Process ID 4108 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.77 MB Peak Memory Usage 9.04 MB svchost.exe Process ID 3156 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 47 MB svchost.exe Process ID 3928 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 104 MB svchost.exe Process ID 3908 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 71 MB svchost.exe Process ID 8460 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 11 MB Peak Memory Usage 17 MB svchost.exe Process ID 3900 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 28 MB Peak Memory Usage 62 MB svchost.exe Process ID 10672 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.66 MB Peak Memory Usage 5.74 MB svchost.exe Process ID 3660 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.24 MB Peak Memory Usage 8.22 MB svchost.exe Process ID 3632 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 14 MB Peak Memory Usage 24 MB svchost.exe Process ID 3612 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.30 MB Peak Memory Usage 18 MB svchost.exe Process ID 3408 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.80 MB Peak Memory Usage 13 MB svchost.exe Process ID 3312 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 20 MB svchost.exe Process ID 3220 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.72 MB Peak Memory Usage 7.56 MB svchost.exe Process ID 2936 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.68 MB Peak Memory Usage 10 MB svchost.exe Process ID 2876 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.34 MB Peak Memory Usage 6.56 MB svchost.exe Process ID 3028 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.09 MB Peak Memory Usage 9.50 MB svchost.exe Process ID 2896 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.75 MB Peak Memory Usage 13 MB svchost.exe Process ID 8996 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.98 MB Peak Memory Usage 10 MB svchost.exe Process ID 2880 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.28 MB Peak Memory Usage 9.60 MB svchost.exe Process ID 5784 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 10 MB Peak Memory Usage 15 MB svchost.exe Process ID 2736 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.52 MB Peak Memory Usage 20 MB svchost.exe Process ID 2728 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 8.66 MB Peak Memory Usage 13 MB svchost.exe Process ID 2700 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.94 MB Peak Memory Usage 7.81 MB svchost.exe Process ID 2600 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.11 MB Peak Memory Usage 8.24 MB svchost.exe Process ID 2468 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.50 MB Peak Memory Usage 8.05 MB svchost.exe Process ID 10120 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.22 MB Peak Memory Usage 8.17 MB svchost.exe Process ID 2448 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.53 MB Peak Memory Usage 9.30 MB svchost.exe Process ID 2360 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.40 MB Peak Memory Usage 7.67 MB svchost.exe Process ID 2256 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.24 MB Peak Memory Usage 5.80 MB svchost.exe Process ID 2248 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.27 MB Peak Memory Usage 18 MB svchost.exe Process ID 2224 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.89 MB Peak Memory Usage 10 MB svchost.exe Process ID 2188 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 16 MB Peak Memory Usage 31 MB svchost.exe Process ID 2136 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 6.57 MB Peak Memory Usage 10 MB svchost.exe Process ID 1076 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 7.58 MB Peak Memory Usage 9.78 MB svchost.exe Process ID 19432 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 30 MB Peak Memory Usage 76 MB svchost.exe Process ID 17376 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 30 MB Peak Memory Usage 62 MB svchost.exe Process ID 1316 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.89 MB Peak Memory Usage 5.39 MB svchost.exe Process ID 2128 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 13 MB Peak Memory Usage 21 MB svchost.exe Process ID 1800 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.73 MB Peak Memory Usage 5.77 MB svchost.exe Process ID 1944 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.63 MB Peak Memory Usage 10 MB svchost.exe Process ID 2208 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.04 MB Peak Memory Usage 7.95 MB svchost.exe Process ID 1868 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 2.64 MB Peak Memory Usage 7.98 MB svchost.exe Process ID 1848 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.20 MB Peak Memory Usage 7.31 MB svchost.exe Process ID 1784 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.57 MB Peak Memory Usage 12 MB svchost.exe Process ID 1744 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 3.14 MB Peak Memory Usage 9.08 MB svchost.exe Process ID 1704 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.66 MB Peak Memory Usage 16 MB svchost.exe Process ID 1552 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.85 MB Peak Memory Usage 12 MB svchost.exe Process ID 1536 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 5.65 MB Peak Memory Usage 11 MB svchost.exe Process ID 1468 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.81 MB Peak Memory Usage 12 MB svchost.exe Process ID 1448 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.59 MB Peak Memory Usage 5.83 MB svchost.exe Process ID 14496 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 9.70 MB Peak Memory Usage 10 MB svchost.exe Process ID 1440 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.17 MB Peak Memory Usage 11 MB svchost.exe Process ID 1400 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 1.64 MB Peak Memory Usage 7.91 MB svchost.exe Process ID 1184 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 4.04 MB Peak Memory Usage 8.73 MB svchost.exe Process ID 1104 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 15 MB Peak Memory Usage 18 MB svchost.exe Process ID 672 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\svchost.exe Memory Usage 22 MB Peak Memory Usage 34 MB System Process ID 4 Memory Usage 4.77 MB Peak Memory Usage 17 MB System Idle Process Process ID 0 SystemSettings.exe Process ID 7004 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\ImmersiveControlPanel\SystemSettings.exe Memory Usage 81 MB Peak Memory Usage 104 MB TabTip.exe Process ID 9556 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe Memory Usage 6.71 MB Peak Memory Usage 15 MB taskhostw.exe Process ID 7324 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\taskhostw.exe Memory Usage 11 MB Peak Memory Usage 18 MB uihost.exe Process ID 6724 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\mcafee\WebAdvisor\uihost.exe Memory Usage 41 MB Peak Memory Usage 66 MB unsecapp.exe Process ID 20464 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\unsecapp.exe Memory Usage 6.24 MB Peak Memory Usage 6.70 MB utility.exe Process ID 10576 User nicz8 Domain DESKTOP-T35MG81 Path C:\ProgramData\Lenovo\ImController\Plugins\IdeaOSDPackage\x64\utility.exe Memory Usage 3.34 MB Peak Memory Usage 10 MB WacomHost.exe Process ID 7536 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Tablet\ISD\WacomHost.exe Memory Usage 2.77 MB Peak Memory Usage 13 MB wininit.exe Process ID 792 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wininit.exe Memory Usage 868 KB Peak Memory Usage 6.80 MB winlogon.exe Process ID 888 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\winlogon.exe Memory Usage 4.43 MB Peak Memory Usage 20 MB WinStore.App.exe Process ID 14316 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.WindowsStore_11911.1001.9.0_x64__8wekyb3d8bbwe\WinStore.App.exe Memory Usage 640 KB Peak Memory Usage 146 MB wlanext.exe Process ID 3484 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wlanext.exe Memory Usage 1.46 MB Peak Memory Usage 4.40 MB WmiPrvSE.exe Process ID 20440 User NETWORK SERVICE Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 13 MB Peak Memory Usage 13 MB WmiPrvSE.exe Process ID 5844 User SYSTEM Domain NT AUTHORITY Path C:\Windows\System32\wbem\WmiPrvSE.exe Memory Usage 12 MB Peak Memory Usage 38 MB WTabletServiceISD.exe Process ID 3040 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Tablet\ISD\WTabletServiceISD.exe Memory Usage 1.54 MB Peak Memory Usage 7.88 MB WUDFHost.exe Process ID 2460 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 1.43 MB Peak Memory Usage 5.90 MB WUDFHost.exe Process ID 72 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 5.66 MB Peak Memory Usage 35 MB WUDFHost.exe Process ID 1096 User LOCAL SERVICE Domain NT AUTHORITY Path C:\Windows\System32\WUDFHost.exe Memory Usage 6.39 MB Peak Memory Usage 13 MB WWAHost.exe Process ID 17524 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\WWAHost.exe Memory Usage 22 MB Peak Memory Usage 98 MB WWAHost.exe Process ID 5272 User nicz8 Domain DESKTOP-T35MG81 Path C:\Windows\System32\WWAHost.exe Memory Usage 20 MB Peak Memory Usage 130 MB XboxApp.exe Process ID 7872 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.XboxApp_48.59.13001.0_x64__8wekyb3d8bbwe\XboxApp.exe Memory Usage 9.11 MB Peak Memory Usage 49 MB ymc.exe Process ID 4160 User SYSTEM Domain NT AUTHORITY Path C:\Program Files\Lenovo\YMC\ymc.exe Memory Usage 25 MB Peak Memory Usage 35 MB YourPhone.exe Process ID 9864 User nicz8 Domain DESKTOP-T35MG81 Path C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19102.525.0_x64__8wekyb3d8bbwe\YourPhone.exe Memory Usage 7.00 MB Peak Memory Usage 40 MB Security Options Accounts: Administrator account status Disabled Accounts: Block Microsoft accounts Not Defined Accounts: Guest account status Disabled Accounts: Limit local account use of blank passwords to console logon only Enabled Accounts: Rename administrator account Administrator Accounts: Rename guest account Guest Audit: Audit the access of global system objects Disabled Audit: Audit the use of Backup and Restore privilege Disabled Audit: Force audit policy subcategory settings (Windows Vista or later) to override audit policy category settings Not Defined Audit: Shut down system immediately if unable to log security audits Disabled DCOM: Machine Access Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined DCOM: Machine Launch Restrictions in Security Descriptor Definition Language (SDDL) syntax Not Defined Devices: Allow undock without having to log on Enabled Devices: Allowed to format and eject removable media Not Defined Devices: Prevent users from installing printer drivers Disabled Devices: Restrict CD-ROM access to locally logged-on user only Not Defined Devices: Restrict floppy access to locally logged-on user only Not Defined Domain controller: Allow server operators to schedule tasks Not Defined Domain controller: LDAP server signing requirements Not Defined Domain controller: Refuse machine account password changes Not Defined Domain member: Digitally encrypt or sign secure channel data (always) Enabled Domain member: Digitally encrypt secure channel data (when possible) Enabled Domain member: Digitally sign secure channel data (when possible) Enabled Domain member: Disable machine account password changes Disabled Domain member: Maximum machine account password age 30 days Domain member: Require strong (Windows 2000 or later) session key Enabled Interactive logon: Display user information when the session is locked Not Defined Interactive logon: Do not require CTRL+ALT+DEL Not Defined Interactive logon: Don't display last signed-in Disabled Interactive logon: Don't display username at sign-in Not Defined Interactive logon: Machine account lockout threshold Not Defined Interactive logon: Machine inactivity limit Not Defined Interactive logon: Message text for users attempting to log on Interactive logon: Message title for users attempting to log on Interactive logon: Number of previous logons to cache (in case domain controller is not available) 10 logons Interactive logon: Prompt user to change password before expiration 5 days Interactive logon: Require Domain Controller authentication to unlock workstation Disabled Interactive logon: Require Windows Hello for Business or smart card Disabled Interactive logon: Smart card removal behavior No Action Microsoft network client: Digitally sign communications (always) Disabled Microsoft network client: Digitally sign communications (if server agrees) Enabled Microsoft network client: Send unencrypted password to third-party SMB servers Disabled Microsoft network server: Amount of idle time required before suspending session Not Defined Microsoft network server: Attempt S4U2Self to obtain claim information Not Defined Microsoft network server: Digitally sign communications (always) Disabled Microsoft network server: Digitally sign communications (if client agrees) Disabled Microsoft network server: Disconnect clients when logon hours expire Enabled Microsoft network server: Server SPN target name validation level Not Defined Network access: Allow anonymous SID/Name translation Disabled Network access: Do not allow anonymous enumeration of SAM accounts Enabled Network access: Do not allow anonymous enumeration of SAM accounts and shares Disabled Network access: Do not allow storage of passwords and credentials for network authentication Disabled Network access: Let Everyone permissions apply to anonymous users Disabled Network access: Named Pipes that can be accessed anonymously Network access: Remotely accessible registry paths System\CurrentControlSet\Control\ProductOptions,System\CurrentControlSet\Control\Server Applications,Software\Microsoft\Windows NT\CurrentVersion Network access: Remotely accessible registry paths and sub-paths System\CurrentControlSet\Control\Print\Printers,System\CurrentControlSet\Services\Eventlog,Software\Microsoft\OLAP Server,Software\Microsoft\Windows NT\CurrentVersion\Print,Software\Microsoft\Windows NT\CurrentVersion\Windows,System\CurrentControlSet\Control\ContentIndex,System\CurrentControlSet\Control\Terminal Server,System\CurrentControlSet\Control\Terminal Server\UserConfig,System\CurrentControlSet\Control\Terminal Server\DefaultUserConfiguration,Software\Microsoft\Windows NT\CurrentVersion\Perflib,System\CurrentControlSet\Services\SysmonLog Network access: Restrict anonymous access to Named Pipes and Shares Enabled Network access: Restrict clients allowed to make remote calls to SAM Network access: Shares that can be accessed anonymously Not Defined Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Network security: Allow Local System to use computer identity for NTLM Not Defined Network security: Allow LocalSystem NULL session fallback Not Defined Network security: Allow PKU2U authentication requests to this computer to use online identities. Not Defined Network security: Configure encryption types allowed for Kerberos Not Defined Network security: Do not store LAN Manager hash value on next password change Enabled Network security: Force logoff when logon hours expire Disabled Network security: LAN Manager authentication level Not Defined Network security: LDAP client signing requirements Negotiate signing Network security: Minimum session security for NTLM SSP based (including secure RPC) clients Require 128-bit encryption Network security: Minimum session security for NTLM SSP based (including secure RPC) servers Require 128-bit encryption Network security: Restrict NTLM: Add remote server exceptions for NTLM authentication Not Defined Network security: Restrict NTLM: Add server exceptions in this domain Not Defined Network security: Restrict NTLM: Audit Incoming NTLM Traffic Not Defined Network security: Restrict NTLM: Audit NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Incoming NTLM traffic Not Defined Network security: Restrict NTLM: NTLM authentication in this domain Not Defined Network security: Restrict NTLM: Outgoing NTLM traffic to remote servers Not Defined Recovery console: Allow automatic administrative logon Not Defined Recovery console: Allow floppy copy and access to all drives and all folders Not Defined Shutdown: Allow system to be shut down without having to log on Enabled Shutdown: Clear virtual memory pagefile Disabled System cryptography: Force strong key protection for user keys stored on the computer Not Defined System cryptography: Use FIPS compliant algorithms for encryption, hashing, and signing Disabled System objects: Require case insensitivity for non-Windows subsystems Enabled System objects: Strengthen default permissions of internal system objects (e.g. Symbolic Links) Enabled System settings: Optional subsystems System settings: Use Certificate Rules on Windows Executables for Software Restriction Policies Disabled User Account Control: Admin Approval Mode for the Built-in Administrator account Not Defined User Account Control: Allow UIAccess applications to prompt for elevation without using the secure desktop Disabled User Account Control: Behavior of the elevation prompt for administrators in Admin Approval Mode Prompt for consent for non-Windows binaries User Account Control: Behavior of the elevation prompt for standard users Prompt for credentials User Account Control: Detect application installations and prompt for elevation Enabled User Account Control: Only elevate executables that are signed and validated Disabled User Account Control: Only elevate UIAccess applications that are installed in secure locations Enabled User Account Control: Run all administrators in Admin Approval Mode Enabled User Account Control: Switch to the secure desktop when prompting for elevation Enabled User Account Control: Virtualize file and registry write failures to per-user locations Enabled Device Tree ACPI x64-based PC Microsoft ACPI-Compliant System ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fan ACPI Fixed Feature Button ACPI Power Button ACPI Processor Aggregator ACPI Thermal Zone ACPI Thermal Zone GPIO Laptop or Slate Indicator Driver Intel Core i5-7200U CPU @ 2.50GHz Intel Core i5-7200U CPU @ 2.50GHz Intel Core i5-7200U CPU @ 2.50GHz Intel Core i5-7200U CPU @ 2.50GHz Intel Dynamic Platform and Thermal Framework Manager Intel Power Engine Plug-in Microsoft Windows Management Interface for ACPI Microsoft Windows Management Interface for ACPI Microsoft Windows Management Interface for ACPI Motherboard resources Trusted Platform Module 2.0 PCI Express Root Complex Intel Dynamic Platform and Thermal Framework Processor Participant Intel Management Engine Interface Intel Serial IO GPIO Host Controller - INT344B Intel Serial IO UART Host Controller - 9D27 Intel Xeon E3 - 1200 v6/7th Gen Intel Core Host Bridge/DRAM Registers - 5904 Mobile 6th/7th Generation Intel Processor Family I/O PCI Express Root Port #1 - 9D10 Mobile 6th/7th Generation Intel Processor Family I/O PCI Express Root Port #3 - 9D12 Mobile 6th/7th Generation Intel Processor Family I/O PMC - 9D21 Mobile 6th/7th Generation Intel Processor Family I/O SMBUS - 9D23 Mobile 6th/7th Generation Intel Processor Family I/O Thermal subsystem - 9D31 Motherboard resources Motherboard resources Motherboard resources Motherboard resources Motherboard resources Intel(R) HD Graphics 620 Generic PnP Monitor Intel(R) USB 3.0 eXtensible Host Controller - 1.0 (Microsoft) USB Root Hub (USB 3.0) Synaptics WBDI USB Composite Device EasyCamera Intel(R) Wireless Bluetooth(R) Bluetooth Device (Personal Area Network) Bluetooth Device (RFCOMM Protocol TDI) Microsoft Bluetooth Enumerator Microsoft Bluetooth LE Enumerator Intel(R) Serial IO I2C Host Controller - 9D60 I2C HID Device HID-compliant mouse HID-compliant touch pad HID-compliant vendor-defined device Microsoft Input Configuration Device Intel(R) Serial IO I2C Host Controller - 9D61 Wacom Device HID Keyboard Device HID-compliant mouse HID-compliant pen HID-compliant touch screen HID-compliant vendor-defined device HID-compliant vendor-defined device HID-compliant vendor-defined device Microsoft Input Configuration Device Intel(R) Serial IO I2C Host Controller - 9D62 I2C HID Device HID Sensor Collection V2 Intel Chipset SATA RAID Controller NVMe INTEL SSDPEKKW25 Mobile 6th/7th Generation Intel(R) Processor Family I/O PCI Express Root Port #6 - 9D15 Intel(R) Dual Band Wireless-AC 8265 Microsoft Wi-Fi Direct Virtual Adapter Microsoft Wi-Fi Direct Virtual Adapter #3 Mobile 7th Generation Intel(R) Processor Family I/O LPC Controller (U with iHDCP2.2 Premium) - 9D4E ACPI Lid High precision event timer Legacy device Microsoft AC Adapter Microsoft ACPI-Compliant Control Method Battery Motherboard resources Motherboard resources Programmable interrupt controller Standard PS/2 Keyboard System CMOS/real time clock System timer Microsoft ACPI-Compliant Embedded Controller Intel Dynamic Platform and Thermal Framework Generic Participant Intel Dynamic Platform and Thermal Framework Generic Participant Lenovo ACPI-Compliant Virtual Power Controller High Definition Audio Controller Intel Display Audio Realtek High Definition Audio Microphone Array (Realtek High Definition Audio) Speakers (Realtek High Definition Audio) Microsoft UEFI-Compliant System Device Firmware Device Firmware System Firmware CPU Intel Core i5 7200U Cores 2 Threads 4 Name Intel Core i5 7200U Code Name Kaby Lake-U/Y Package Socket 1356 FCBGA Technology 14nm Specification Intel Core i5-7200U CPU @ 2.50GHz Family 6 Extended Family 6 Model E Extended Model 8E Stepping 9 Revision B0 Instructions MMX, SSE, SSE2, SSE3, SSSE3, SSE4.1, SSE4.2, Intel 64, NX, VMX, AES, AVX, AVX2, FMA3 Virtualization Supported, Disabled Hyperthreading Supported, Enabled Stock Core Speed 2700 MHz Stock Bus Speed 100 MHz Average Temperature 39 °C Caches L1 Data Cache Size 2 x 32 KBytes L1 Instructions Cache Size 2 x 32 KBytes L2 Unified Cache Size 2 x 256 KBytes L3 Unified Cache Size 3072 KBytes Cores Core 0 Core Speed 1496.0 MHz Multiplier x 15.0 Bus Speed 99.7 MHz Temperature 38 °C Threads APIC ID: 0, 1 Core 1 Core Speed 1496.0 MHz Multiplier x 15.0 Bus Speed 99.7 MHz Temperature 40 °C Threads APIC ID: 2, 3 RAM Memory Type Unknown Size 8036 MBytes Channels # Dual DRAM Frequency 1063.9 MHz CAS# Latency (CL) 15 clocks RAS# to CAS# Delay (tRCD) 15 clocks RAS# Precharge (tRP) 15 clocks Cycle Time (tRAS) 35 clocks Command Rate (CR) 2T Physical Memory Memory Usage 83 % Total Physical 7.85 GB Available Physical 1.27 GB Total Virtual 14 GB Available Virtual 4.10 GB SPD Number Of SPD Modules 0 Motherboard Manufacturer LENOVO Model Lenovo YOGA 720-13IKB (U3E1) Version SDK0J40709 WIN Chipset Vendor Intel Chipset Model Kaby Lake Chipset Revision 02 Southbridge Vendor Intel Southbridge Model ID9D4E Southbridge Revision 21 BIOS Brand LENOVO Version 1YCN30WW(V1.07) Date 6/14/2017 PCI Data Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J6C1 Characteristics PME, Hot Plug Slot Number 0 Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J6D2 Characteristics PME, Hot Plug Slot Number 1 Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J7C1 Characteristics PME, Hot Plug Slot Number 2 Slot PCI-E x1 Slot Type PCI-E x1 Slot Usage Available Data lanes x1 Slot Designation J7D1 Characteristics PME, Hot Plug Slot Number 3 Slot PCI-E x4 Slot Type PCI-E x4 Slot Usage Available Data lanes x4 Slot Designation J8C1 Characteristics PME, Hot Plug Slot Number 4 Graphics Monitor Name Generic PnP Monitor on Intel HD Graphics 620 Current Resolution 1280x720 pixels Work Resolution 1280x680 pixels State Enabled, Primary Monitor Width 1920 Monitor Height 1080 Monitor BPP 32 bits per pixel Monitor Frequency 60 Hz Device \\.\DISPLAY1\Monitor0 Intel HD Graphics 620 Manufacturer Intel Model HD Graphics 620 Device ID 8086-5916 Revision 3 Subvendor Lenovo (17AA) Current Performance Level Level 0 Driver version 22.20.16.4836 Count of performance levels : 1 Level 1 - "Perf Level 0" Storage Hard drives NVMe INTEL SSDPEKKW25 (SSD) Serial Number BTPY71960DQE256D Firmware Version Number PSF107C Interface RAID Capacity 238 GB Real size 256,060,514,304 bytes RAID Type Software RAID S.M.A.R.T S.M.A.R.T not supported Partition 0 Partition ID Disk #0, Partition #0 File System FAT32 Volume Serial Number 48062140 Size 256 MB Used Space 29.6 MB (11%) Free Space 226 MB (89%) Partition 1 Partition ID Disk #0, Partition #1 Disk Letter C: File System NTFS Volume Serial Number FC096015 Size 212 GB Used Space 73 GB (34%) Free Space 139 GB (66%) Partition 2 Partition ID Disk #0, Partition #2 Disk Letter D: File System NTFS Volume Serial Number A28884D3 Size 25 GB Used Space 1.57 GB (6%) Free Space 23.4 GB (94%) Partition 3 Partition ID Disk #0, Partition #3 File System NTFS Volume Serial Number 1009ECD5 Size 999 MB Used Space 498 MB (49%) Free Space 501 MB (51%) Optical Drives No optical disk drives detected Audio Sound Cards Realtek High Definition Audio Intel Display Audio Playback Device Speakers (Realtek High Definition Audio) Recording Device Microphone Array (Realtek High Definition Audio) Peripherals HID Keyboard Device Device Kind Keyboard Device Name HID Keyboard Device Vendor WCOM Location Wacom Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\kbdhid.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys Standard PS/2 Keyboard Device Kind Keyboard Device Name Standard PS/2 Keyboard Vendor MSFT Location Mobile 7th Generation Intel Processor Family I/O LPC Controller (U with iHDCP2.2 Premium) - 9D4E Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\i8042prt.sys File C:\WINDOWS\system32\DRIVERS\kbdclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor WCOM Location Wacom Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys HID-compliant mouse Device Kind Mouse Device Name HID-compliant mouse Vendor MSFT Location I2C HID Device Driver Date 6-21-2006 Version 10.0.18362.1 File C:\WINDOWS\system32\DRIVERS\mouhid.sys File C:\WINDOWS\system32\DRIVERS\mouclass.sys EasyCamera Device Kind Camera/scanner Device Name EasyCamera Vendor IMC Networks Comment EasyCamera Location USB Composite Device Driver Date 2-22-2017 Version 10.0.14393.11254 File C:\WINDOWS\system32\DRIVERS\rtsuvc.sys Printers Fax Printer Port SHRFAX: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 200 * 200 dpi Monochrome Status Unknown Driver Driver Name Microsoft Shared Fax Driver (v4.00) Driver Path C:\WINDOWS\system32\spool\DRIVERS\x64\3\FXSDRV.DLL Microsoft Print to PDF (Default Printer) Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft Print To PDF (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Microsoft XPS Document Writer Printer Port PORTPROMPT: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Microsoft XPS Document Writer v4 (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Send To OneNote 2016 Printer Port nul: Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 600 * 600 dpi Color Status Unknown Driver Driver Name Send to Microsoft OneNote 16 Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll OneNote Printer Port Microsoft.Office.OneNote_16001.12228.20184.0_x64__8wekyb3d8bbwe_microsoft.onenoteim_S-1-5-21-2126566057-4181855661-943989508-1001 Print Processor winprint Availability Always Priority 1 Duplex None Print Quality 300 * 300 dpi Color Status Unknown Driver Driver Name Microsoft Software Printer Driver (v6.03) Driver Path C:\WINDOWS\System32\DriverStore\FileRepository\ntprint.inf_amd64_ce3301b66255a0fb\Amd64\mxdwdrv.dll Network You are connected to the internet Connected through Intel Dual Band Wireless-AC 8265 IP Address 10.0.0.217 Subnet mask 255.255.255.0 Gateway server 10.0.0.1 Preferred DNS server 75.75.75.75 Alternate DNS server 75.75.76.76 DHCP Enabled DHCP server 10.0.0.1 External IP Address 73.65.106.3 Adapter Type IEEE 802.11 wireless NetBIOS over TCP/IP Enabled via DHCP NETBIOS Node Type Hybrid node Link Speed 5.5 KBps Computer Name NetBIOS Name DESKTOP-T35MG81 DNS Name DESKTOP-T35MG81 Membership Part of workgroup Workgroup WORKGROUP Remote Desktop Disabled Console State Active Domain DESKTOP-T35MG81 WinInet Info LAN Connection Local system uses a local area network to connect to the Internet Local system has RAS to connect to the Internet Wi-Fi Info Using native Wi-Fi API version 2 Available access points count 25 Wi-Fi () SSID Frequency 5240000 kHz Channel Number 48 Name No name Signal Strength/Quality 87 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i Robust Security Network Association (RSNA) algorithm (WPA2 is one such algorithm) Wi-Fi () SSID Frequency 2412000 kHz Channel Number 1 Name No name Signal Strength/Quality 90 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm Wi-Fi () SSID Frequency 5240000 kHz Channel Number 48 Name No name Signal Strength/Quality 43 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time WPA algorithm that uses preshared keys (PSK) Wi-Fi (EE CLUB ROOM) SSID EE CLUB ROOM Frequency 2412000 kHz Channel Number 1 Name EE CLUB ROOM Signal Strength/Quality 65 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm Wi-Fi (FHG) SSID FHG Frequency 2412000 kHz Channel Number 1 Name FHG Signal Strength/Quality 31 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Issawifi) SSID Issawifi Frequency 5805000 kHz Channel Number 161 Name Issawifi Signal Strength/Quality 89 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Jeremy) SSID Jeremy Frequency 2437000 kHz Channel Number 6 Name Jeremy Signal Strength/Quality 60 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Living Room TV) SSID Living Room TV Frequency 2412000 kHz Channel Number 1 Name Living Room TV Signal Strength/Quality 62 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm Wi-Fi (SEC_LinkShare_9ed5f5) SSID SEC_LinkShare_9ed5f5 Frequency 2437000 kHz Channel Number 6 Name SEC_LinkShare_9ed5f5 Signal Strength/Quality 62 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT323) SSID UNIT323 Frequency 2462000 kHz Channel Number 11 Name UNIT323 Signal Strength/Quality 40 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT417) SSID UNIT417 Frequency 2462000 kHz Channel Number 11 Name UNIT417 Signal Strength/Quality 40 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT423) SSID UNIT423 Frequency 5240000 kHz Channel Number 48 Name UNIT423 Signal Strength/Quality 60 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT517) SSID UNIT517 Frequency 5745000 kHz Channel Number 149 Name UNIT517 Signal Strength/Quality 85 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT519) SSID UNIT519 Frequency 5785000 kHz Channel Number 157 Name UNIT519 Signal Strength/Quality 70 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT521) SSID UNIT521 Frequency 2437000 kHz Channel Number 6 Name UNIT521 Signal Strength/Quality 58 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags Currently Connected to this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT522) SSID UNIT522 Frequency 2437000 kHz Channel Number 6 Name UNIT522 Signal Strength/Quality 75 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT523) SSID UNIT523 Frequency 5240000 kHz Channel Number 48 Name UNIT523 Signal Strength/Quality 67 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT527) SSID UNIT527 Frequency 2437000 kHz Channel Number 6 Name UNIT527 Signal Strength/Quality 43 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT619 HS) SSID UNIT619 HS Frequency 5180000 kHz Channel Number 36 Name UNIT619 HS Signal Strength/Quality 40 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (UNIT623) SSID UNIT623 Frequency 2412000 kHz Channel Number 1 Name UNIT623 Signal Strength/Quality 70 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (Unit621) SSID Unit621 Frequency 2462000 kHz Channel Number 11 Name Unit621 Signal Strength/Quality 78 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (VIZIOCastAudio3388) SSID VIZIOCastAudio3388 Frequency 2462000 kHz Channel Number 11 Name VIZIOCastAudio3388 Signal Strength/Quality 31 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm Wi-Fi (XFINITY) SSID XFINITY Frequency 5200000 kHz Channel Number 40 Name XFINITY Signal Strength/Quality 87 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i Robust Security Network Association (RSNA) algorithm (WPA2 is one such algorithm) Wi-Fi (chocolate&vanilla) SSID chocolate&vanilla Frequency 2412000 kHz Channel Number 1 Name chocolate&vanilla Signal Strength/Quality 40 Security Enabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network AES-CCMP algorithm Default Auth used to join this network for the first time 802.11i RSNA algorithm that uses PSK Wi-Fi (xfinitywifi) SSID xfinitywifi Frequency 2412000 kHz Channel Number 1 Name xfinitywifi Signal Strength/Quality 88 Security Disabled State The interface is connected to a network Dot11 Type Infrastructure BSS network Network Connectible Network Flags There is a profile for this network Cipher Algorithm to be used when joining this network No Cipher algorithm is enabled/supported Default Auth used to join this network for the first time IEEE 802.11 Open System authentication algorithm WinHTTPInfo WinHTTPSessionProxyType No proxy Session Proxy Session Proxy Bypass Connect Retries 5 Connect Timeout (ms) 60,000 HTTP Version HTTP 1.1 Max Connects Per 1.0 Servers INFINITE Max Connects Per Servers INFINITE Max HTTP automatic redirects 10 Max HTTP status continue 10 Send Timeout (ms) 30,000 IEProxy Auto Detect Yes IEProxy Auto Config IEProxy IEProxy Bypass Default Proxy Config Access Type No proxy Default Config Proxy Default Config Proxy Bypass Sharing and Discovery Network Discovery Disabled File and Printer Sharing Enabled File and printer sharing service Enabled Simple File Sharing Enabled Administrative Shares Enabled Network access: Sharing and security model for local accounts Classic - local users authenticate as themselves Adapters List Enabled Bluetooth Device (Personal Area Network) Connection Name Bluetooth Network Connection DHCP enabled Yes MAC Address AC-ED-5C-F6-89-3D Intel(R) Dual Band Wireless-AC 8265 Connection-specific DNS Suffix hsd1.mn.comcast.net Connection Name Wi-Fi NetBIOS over TCPIP Yes DHCP enabled Yes MAC Address AC-ED-5C-F6-89-39 IP Address 10.0.0.217 Subnet mask 255.255.255.0 Gateway server 10.0.0.1 DHCP 10.0.0.1 DNS Server 75.75.75.75 75.75.76.76 Network Shares No network shares Current TCP Connections C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (12108) Local 10.0.0.217:55564 ESTABLISHED Remote 170.76.216.244:443 (Querying... ) (HTTPS) Local 10.0.0.217:55567 ESTABLISHED Remote 23.12.158.95:443 (Querying... ) (HTTPS) Local 10.0.0.217:55568 ESTABLISHED Remote 161.69.92.73:443 (Querying... ) (HTTPS) Local 10.0.0.217:55591 ESTABLISHED Remote 67.217.81.55:443 (Querying... ) (HTTPS) Local 10.0.0.217:55593 ESTABLISHED Remote 74.119.118.138:443 (Querying... ) (HTTPS) Local 10.0.0.217:55594 ESTABLISHED Remote 35.186.194.58:443 (Querying... ) (HTTPS) Local 10.0.0.217:55595 ESTABLISHED Remote 151.101.185.194:443 (Querying... ) (HTTPS) Local 10.0.0.217:55596 ESTABLISHED Remote 52.21.158.198:443 (Querying... ) (HTTPS) Local 10.0.0.217:55597 ESTABLISHED Remote 152.195.32.39:443 (Querying... ) (HTTPS) Local 10.0.0.217:55601 ESTABLISHED Remote 72.21.91.8:443 (Querying... ) (HTTPS) Local 10.0.0.217:55602 ESTABLISHED Remote 99.84.167.26:443 (Querying... ) (HTTPS) Local 10.0.0.217:55605 ESTABLISHED Remote 162.247.242.19:443 (Querying... ) (HTTPS) Local 10.0.0.217:55627 ESTABLISHED Remote 23.33.27.119:443 (Querying... ) (HTTPS) Local 10.0.0.217:55584 ESTABLISHED Remote 35.201.108.163:443 (Querying... ) (HTTPS) Local 10.0.0.217:55631 ESTABLISHED Remote 23.199.170.214:443 (Querying... ) (HTTPS) Local 10.0.0.217:54727 ESTABLISHED Remote 10.0.0.87:8009 (Querying... ) Local 10.0.0.217:55637 ESTABLISHED Remote 23.33.27.119:443 (Querying... ) (HTTPS) Local 10.0.0.217:55639 ESTABLISHED Remote 23.33.27.119:443 (Querying... ) (HTTPS) Local 10.0.0.217:55642 ESTABLISHED Remote 23.33.27.119:443 (Querying... ) (HTTPS) Local 10.0.0.217:54773 ESTABLISHED Remote 35.170.14.173:443 (Querying... ) (HTTPS) Local 10.0.0.217:55655 ESTABLISHED Remote 151.101.185.253:443 (Querying... ) (HTTPS) Local 10.0.0.217:55656 ESTABLISHED Remote 34.96.70.1:443 (Querying... ) (HTTPS) Local 10.0.0.217:55657 ESTABLISHED Remote 185.167.164.39:443 (Querying... ) (HTTPS) Local 10.0.0.217:54872 ESTABLISHED Remote 151.101.0.114:443 (Querying... ) (HTTPS) Local 10.0.0.217:55517 ESTABLISHED Remote 34.227.210.106:443 (Querying... ) (HTTPS) Local 10.0.0.217:55675 ESTABLISHED Remote 184.84.231.31:443 (Querying... ) (HTTPS) Local 10.0.0.217:55521 ESTABLISHED Remote 161.69.92.73:443 (Querying... ) (HTTPS) Local 10.0.0.217:55678 ESTABLISHED Remote 69.147.64.34:443 (Querying... ) (HTTPS) Local 10.0.0.217:55629 ESTABLISHED Remote 13.249.87.19:443 (Querying... ) (HTTPS) Local 10.0.0.217:55522 ESTABLISHED Remote 161.69.92.73:443 (Querying... ) (HTTPS) Local 10.0.0.217:55683 ESTABLISHED Remote 69.147.64.34:443 (Querying... ) (HTTPS) Local 10.0.0.217:55685 ESTABLISHED Remote 52.201.79.21:443 (Querying... ) (HTTPS) Local 10.0.0.217:55688 ESTABLISHED Remote 152.195.12.131:443 (Querying... ) (HTTPS) Local 10.0.0.217:55689 ESTABLISHED Remote 152.195.12.131:443 (Querying... ) (HTTPS) Local 10.0.0.217:55693 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP) Local 10.0.0.217:55694 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP) Local 10.0.0.217:55695 ESTABLISHED Remote 130.211.26.229:443 (Querying... ) (HTTPS) Local 10.0.0.217:55696 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP) Local 10.0.0.217:55697 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP) Local 10.0.0.217:55698 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP) Local 10.0.0.217:55699 ESTABLISHED Remote 104.28.28.94:80 (Querying... ) (HTTP) Local 10.0.0.217:55704 ESTABLISHED Remote 35.227.228.85:443 (Querying... ) (HTTPS) Local 10.0.0.217:55708 ESTABLISHED Remote 184.84.229.200:443 (Querying... ) (HTTPS) Local 10.0.0.217:55529 ESTABLISHED Remote 184.84.231.31:443 (Querying... ) (HTTPS) Local 10.0.0.217:55711 ESTABLISHED Remote 151.101.186.133:443 (Querying... ) (HTTPS) Local 10.0.0.217:55712 ESTABLISHED Remote 151.101.186.2:443 (Querying... ) (HTTPS) Local 10.0.0.217:55713 ESTABLISHED Remote 13.249.87.253:443 (Querying... ) (HTTPS) Local 10.0.0.217:55715 ESTABLISHED Remote 184.87.218.26:443 (Querying... ) (HTTPS) Local 10.0.0.217:55716 ESTABLISHED Remote 184.87.218.26:443 (Querying... ) (HTTPS) Local 10.0.0.217:55717 ESTABLISHED Remote 184.87.218.26:443 (Querying... ) (HTTPS) Local 10.0.0.217:55723 ESTABLISHED Remote 35.207.24.140:443 (Querying... ) (HTTPS) Local 10.0.0.217:55530 ESTABLISHED Remote 152.195.14.41:443 (Querying... ) (HTTPS) Local 10.0.0.217:55535 ESTABLISHED Remote 152.199.5.13:443 (Querying... ) (HTTPS) Local 10.0.0.217:55727 ESTABLISHED Remote 99.84.175.74:443 (Querying... ) (HTTPS) Local 10.0.0.217:55541 ESTABLISHED Remote 35.190.59.101:443 (Querying... ) (HTTPS) Local 10.0.0.217:55729 ESTABLISHED Remote 54.210.16.172:443 (Querying... ) (HTTPS) Local 10.0.0.217:55730 ESTABLISHED Remote 54.210.16.172:443 (Querying... ) (HTTPS) Local 10.0.0.217:55710 ESTABLISHED Remote 13.249.87.253:443 (Querying... ) (HTTPS) Local 10.0.0.217:55548 ESTABLISHED Remote 184.84.230.169:443 (Querying... ) (HTTPS) Local 10.0.0.217:55733 ESTABLISHED Remote 13.249.82.74:443 (Querying... ) (HTTPS) Local 10.0.0.217:55734 ESTABLISHED Remote 13.249.87.50:443 (Querying... ) (HTTPS) Local 10.0.0.217:55735 ESTABLISHED Remote 13.249.82.74:443 (Querying... ) (HTTPS) Local 10.0.0.217:55736 ESTABLISHED Remote 151.139.128.10:443 (Querying... ) (HTTPS) Local 10.0.0.217:55738 ESTABLISHED Remote 151.139.128.10:443 (Querying... ) (HTTPS) Local 10.0.0.217:55739 ESTABLISHED Remote 205.185.216.42:443 (Querying... ) (HTTPS) Local 10.0.0.217:55742 ESTABLISHED Remote 3.135.109.219:443 (Querying... ) (HTTPS) Local 10.0.0.217:55745 ESTABLISHED Remote 151.139.128.10:443 (Querying... ) (HTTPS) Local 10.0.0.217:55549 ESTABLISHED Remote 184.84.231.31:443 (Querying... ) (HTTPS) Local 10.0.0.217:55552 ESTABLISHED Remote 107.178.246.49:443 (Querying... ) (HTTPS) Local 10.0.0.217:55554 ESTABLISHED Remote 184.84.230.169:443 (Querying... ) (HTTPS) Local 10.0.0.217:55749 ESTABLISHED Remote 184.87.218.39:443 (Querying... ) (HTTPS) Local 10.0.0.217:55560 ESTABLISHED Remote 35.201.67.47:443 (Querying... ) (HTTPS) Local 10.0.0.217:55731 ESTABLISHED Remote 99.84.167.36:443 (Querying... ) (HTTPS) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.54.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe (15548) Local 10.0.0.217:55725 ESTABLISHED Remote 52.114.75.79:443 (Querying... ) (HTTPS) C:\Windows\System32\WWAHost.exe (5272) Local 10.0.0.217:52460 CLOSE-WAIT Remote 72.21.91.29:80 (Querying... ) (HTTP) Local 10.0.0.217:52465 CLOSE-WAIT Remote 23.73.148.126:443 (Querying... ) (HTTPS) Local 10.0.0.217:52466 CLOSE-WAIT Remote 23.73.148.126:443 (Querying... ) (HTTPS) Local 10.0.0.217:52467 CLOSE-WAIT Remote 23.73.148.126:443 (Querying... ) (HTTPS) Local 10.0.0.217:52468 CLOSE-WAIT Remote 23.73.148.126:443 (Querying... ) (HTTPS) Local 10.0.0.217:52469 CLOSE-WAIT Remote 23.73.148.126:443 (Querying... ) (HTTPS) Local 10.0.0.217:52470 CLOSE-WAIT Remote 23.73.148.126:443 (Querying... ) (HTTPS) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe (9120) Local 10.0.0.217:55770 ESTABLISHED Remote 40.90.22.189:443 (Querying... ) (HTTPS) Local 10.0.0.217:55769 ESTABLISHED Remote 204.79.197.200:443 (Querying... ) (HTTPS) lsass.exe (976) Local 0.0.0.0:49664 LISTEN MMSSHOST.exe (5256) Local 0.0.0.0:6646 LISTEN servicehost.exe (3540) Local 10.0.0.217:55746 ESTABLISHED Remote 161.69.92.73:443 (Querying... ) (HTTPS) Local 10.0.0.217:55747 ESTABLISHED Remote 104.208.16.0:443 (Querying... ) (HTTPS) services.exe (908) Local 0.0.0.0:49669 LISTEN spoolsv.exe (3520) Local 0.0.0.0:49668 LISTEN svchost.exe (1104) Local 0.0.0.0:135 (DCE) LISTEN svchost.exe (1704) Local 0.0.0.0:49666 LISTEN svchost.exe (2128) Local 0.0.0.0:49667 LISTEN svchost.exe (4212) Local 10.0.0.217:54749 ESTABLISHED Remote 52.242.211.89:443 (Querying... ) (HTTPS) svchost.exe (7992) Local 0.0.0.0:5040 LISTEN System Process Local 10.0.0.217:55580 TIME-WAIT Remote 34.239.215.228:443 (Querying... ) (HTTPS) Local 10.0.0.217:55679 TIME-WAIT Remote 104.244.36.20:443 (Querying... ) (HTTPS) Local 10.0.0.217:55558 TIME-WAIT Remote 54.164.19.112:443 (Querying... ) (HTTPS) Local 10.0.0.217:55628 TIME-WAIT Remote 54.172.176.218:443 (Querying... ) (HTTPS) Local 10.0.0.217:55607 TIME-WAIT Remote 52.9.54.241:443 (Querying... ) (HTTPS) Local 10.0.0.217:55163 TIME-WAIT Remote 52.114.75.79:443 (Querying... ) (HTTPS) Local 10.0.0.217:55534 TIME-WAIT Remote 34.204.4.212:443 (Querying... ) (HTTPS) Local 10.0.0.217:55566 TIME-WAIT Remote 52.21.100.231:443 (Querying... ) (HTTPS) Local 10.0.0.217:55619 TIME-WAIT Remote 68.67.178.15:443 (Querying... ) (HTTPS) Local 10.0.0.217:55635 TIME-WAIT Remote 68.67.160.26:443 (Querying... ) (HTTPS) Local 10.0.0.217:55651 TIME-WAIT Remote 54.158.57.141:443 (Querying... ) (HTTPS) Local 10.0.0.217:55659 TIME-WAIT Remote 192.35.249.127:443 (Querying... ) (HTTPS) Local 10.0.0.217:55661 TIME-WAIT Remote 52.32.197.173:443 (Querying... ) (HTTPS) Local 10.0.0.217:55677 TIME-WAIT Remote 104.244.36.20:443 (Querying... ) (HTTPS) Local 10.0.0.217:55681 TIME-WAIT Remote 18.210.214.242:443 (Querying... ) (HTTPS) Local 10.0.0.217:55724 TIME-WAIT Remote 54.229.151.41:443 (Querying... ) (HTTPS) Local 10.0.0.217:55726 TIME-WAIT Remote 34.199.245.46:443 (Querying... ) (HTTPS) Local 10.0.0.217:55732 TIME-WAIT Remote 54.229.151.41:443 (Querying... ) (HTTPS) Local 10.0.0.217:55542 TIME-WAIT Remote 3.224.137.57:443 (Querying... ) (HTTPS) Local 10.0.0.217:55748 TIME-WAIT Remote 35.182.189.201:443 (Querying... ) (HTTPS) Local 10.0.0.217:55620 TIME-WAIT Remote 68.67.178.15:443 (Querying... ) (HTTPS) Local 10.0.0.217:55575 TIME-WAIT Remote 192.99.63.77:443 (Querying... ) (HTTPS) Local 10.0.0.217:55160 TIME-WAIT Remote 13.249.87.116:443 (Querying... ) (HTTPS) Local 10.0.0.217:55728 TIME-WAIT Remote 54.236.176.230:443 (Querying... ) (HTTPS) System Process Local 10.0.0.217:139 (NetBIOS session service) LISTEN Local 0.0.0.0:445 (Windows shares) LISTEN wininit.exe (792) Local 0.0.0.0:49665 LISTEN Generated with Speccy v1.32.740